Latest CVE Feed
-
9.8
CRITICALCVE-2021-30000
An issue was discovered in LATRIX 0.6.0. SQL injection in the txtaccesscode parameter of inandout.php leads to information disclosure and code execution.... Read more
Affected Products : latrix- Published: Apr. 02, 2021
- Modified: Nov. 21, 2024
-
8.1
HIGHCVE-2021-2485
Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: Quotes). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to co... Read more
Affected Products : trade_management- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
8.1
HIGHCVE-2021-2484
Vulnerability in the Oracle Operations Intelligence product of Oracle E-Business Suite (component: BIS Operations Intelligence). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with n... Read more
Affected Products : operations_intelligence- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
8.1
HIGHCVE-2021-2483
Vulnerability in the Oracle Content Manager product of Oracle E-Business Suite (component: Content Item Manager). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with network access v... Read more
Affected Products : content_manager- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
8.5
HIGHCVE-2021-2482
Vulnerability in the Oracle Payables product of Oracle E-Business Suite (component: Invoice Approvals). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to... Read more
Affected Products : payables- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-2481
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.26 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols... Read more
- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2021-2480
Vulnerability in the Oracle HTTP Server product of Oracle Fusion Middleware (component: Web Listener). The supported version that is affected is 11.1.1.9.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to... Read more
Affected Products : http_server- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
4.9
MEDIUMCVE-2021-2479
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.26 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to c... Read more
- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
4.9
MEDIUMCVE-2021-2478
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.26 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to c... Read more
- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-2477
Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Session Management). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker wit... Read more
- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-2476
Vulnerability in the Oracle Transportation Management product of Oracle Supply Chain (component: Authentication). The supported version that is affected is 6.4.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTT... Read more
Affected Products : transportation_management- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
4.4
MEDIUMCVE-2021-2475
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.28. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure wher... Read more
Affected Products : vm_virtualbox- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
8.5
HIGHCVE-2021-2474
Vulnerability in the Oracle Web Analytics product of Oracle E-Business Suite (component: Admin). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compro... Read more
Affected Products : web_analytics- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
7.9
HIGHCVE-2021-2471
Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 8.0.26 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocol... Read more
- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-2464
Vulnerability in Oracle Linux (component: OSwatcher). Supported versions that are affected are 7 and 8. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Linux executes to compromise Oracle Linux... Read more
- Published: Sep. 24, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-2463
Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (component: Dynamo Application Framework). Supported versions that are affected are 11.0.0, 11.1.0, 11.2.0 and 11.3.0-11.3.2. Easily exploitable vulnerability allows unauthenticated ... Read more
Affected Products : commerce_platform- Published: Jul. 21, 2021
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2021-2462
Vulnerability in the Oracle Commerce Service Center product of Oracle Commerce (component: Commerce Service Center). Supported versions that are affected are 11.0.0, 11.1.0, 11.2.0 and 11.3.0-11.3.2. Easily exploitable vulnerability allows unauthenticated... Read more
Affected Products : commerce_service_center- Published: Jul. 21, 2021
- Modified: Nov. 21, 2024
-
8.3
HIGHCVE-2021-2461
Vulnerability in the Oracle Communications Interactive Session Recorder product of Oracle Communications (component: Provision API). The supported version that is affected is 6.4. Easily exploitable vulnerability allows unauthenticated attacker with netwo... Read more
Affected Products : communications_interactive_session_recorder- Published: Oct. 20, 2021
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2021-2460
Vulnerability in the Oracle Application Express Data Reporter component of Oracle Database Server. The supported version that is affected is Prior to 21.1.0.00.04. Easily exploitable vulnerability allows low privileged attacker having Valid User Account p... Read more
Affected Products : application_express- Published: Jul. 21, 2021
- Modified: Nov. 21, 2024
-
7.6
HIGHCVE-2021-2458
Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: Identity Console). Supported versions that are affected are 11.1.2.2.0, 11.1.2.3.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged att... Read more
Affected Products : identity_manager- Published: Jul. 21, 2021
- Modified: Nov. 21, 2024